AGPL-3.0 configuration and infrastructure management platform for MSPs: desired-state config, drift detection, workflow automation, live endpoint telemetry and multi-tenancy across Windows, Linux and macOS, with mTLS, RBAC and a cfg CLI. Early development.
Open source. Open possibilities.
Discover quality open-source projects, submit projects anonymously, and claim and edit your own project.
A little curiosity. A world of open source.
THE FIRST COLLECTIONLess than 10 stars, 5+ commits in the last 30 days — projects made with care.
Apache-2.0 Rust control plane for running VMs, software-defined networking, storage and security policy on KVM-capable Linux hosts, exposing 480+ REST endpoints and four front ends: CLI, web console, Kubernetes operator and Terraform provider.
Ansible collection for managing Gexec instances. Install via 'ansible-galaxy collection install gexec.gexec' or add to requirements.yml. Follows conventional commits and semantic versioning for development.
Unofficial Terraform provider for familio.org. Manages family-tree persons, marriages, life events, and tags via CRUD operations. Uses reverse-engineered API. Authentication via browser session cookie.
Terraform provider for managing SAP Cloud Identity Services resources via infrastructure-as-code, with OpenTofu compatibility.
UCloud SDK for Node.js: a client library for calling UCloud cloud APIs from Node.js. The README links Chinese-language guides on quickstart, configuration, error handling, middleware and generic calls, plus examples for batch-creating cloud hosts and building a two-tier load-balanced architecture.
RootGuard is a self-hosted Docker Compose stack that combines AdGuard Home filtering with a private recursive Unbound resolver, adding DNSSEC validation and a unified web GUI for guided setup, local DNS, health checks, updates and rollbacks.
A personal homelab infrastructure repository managing a hybrid ARM64/AMD64 Kubernetes cluster with Ceph storage, Velero backups, and infrastructure-as-code tooling.
NetBox plugin that mirrors Proxmox-managed Ceph inventory in read-only form via proxbox-api, covering clusters, daemons, OSDs, pools, filesystems and CRUSH rules, plus a separately gated v2 desired-state control plane with plan-bound, two-person approval.
A personal k3s homelab managed as infrastructure-as-code with Ansible: Traefik ingress, Authelia SSO, SOPS-encrypted secrets, Longhorn storage and Cloudflare proxying, plus a small LAN-only Docker stack on a Raspberry Pi.
An open-source FOC driver for small BLDC motors and servos. It enables precise force, position, and velocity control, featuring a web monitor, simulator, and hardware design files.
The official RavenDB Kubernetes Operator enables fully automated, declarative deployment and management of secure RavenDB clusters on Kubernetes, handling certificates, bootstrapping, rolling upgrades, external access, storage, and health monitoring.
Linux security hardening tool written in Rust that scans for misconfigurations, applies fixes with rollback, and maps findings to ten compliance frameworks across multiple distributions.
Ansible collection for managing Automation Hub servers, providing modules to automate collection uploads, user and group administration, namespace configuration, and API token management via playbooks.
A personal NixOS configuration utilizing Flakes and Home Manager for a gaming/dev desktop and a self-hosted server.
Official Terraform provider for Orca Security, enabling infrastructure-as-code management of Orca Security resources through declarative Terraform configuration.
AgentPod is a self-hostable fleet console for managing AI agent runtimes across machines, harnesses, and network boundaries, with filesystem, logs, terminal, config, health, lifecycle, cleanup, and provisioning controls.
nepenthe builds, versions and distributes shared conda/PyPI environments: describe a manifest, solve once with rattler, freeze a portable multi-platform lock, publish to a versioned registry, and install without conda.
Ansible roles for deploying a self-hosted AI/LLM stack on Proxmox, covering model serving, RAG, agents, and LLM application platforms.
29 agent skills for firewall and network-security work: parsing, auditing, converting and diffing Cisco, Fortinet, Palo Alto and Juniper SRX configs, SRX operational playbooks, compliance and STIG evidence mapping, plus Proxmox deployment guides.
vpnctl is a lightweight, fail-safe Linux control plane for self-hosted VPN infrastructure, managing sing-box and other kernels via SSH with a web admin UI.
A personal learning lab documenting the construction, monitoring, and disaster recovery of Ubuntu servers using Ansible, Prometheus, Grafana, and Loki, featuring beginner guides and detailed execution evidence.
Graft is an early-alpha tool that turns typed TOML workload intent into a Nix-built rootfs, a Podman Quadlet unit, and a systemd service for NixOS system containers or Home Manager user containers.